OrangeHRM 4.10 is vulnerable to a Host header injection redirect via viewPersonalDetails endpoint.
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2022-27110.json"